top title background image
flash

file.dll

Status: finished
Submission Time: 2025-02-02 14:26:15 +01:00
Malicious
Trojan
Evader
Matanbuchus

Comments

Tags

  • dll
  • loader-module
  • Matanbuchus

Details

  • Analysis ID:
    1605025
  • API (Web) ID:
    1605025
  • Analysis Started:
    2025-02-02 14:26:15 +01:00
  • Analysis Finished:
    2025-02-02 14:35:55 +01:00
  • MD5:
    6ea9ef63b75a79f0be704ea1b4e51bcb
  • SHA1:
    df8e256d04ca10e52ce21f021f032fd182615f68
  • SHA256:
    211cea7a5fe12205fee4e72837279409ace663567c5b8c36828a3818aabef456
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 100
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 7/72
malicious

IPs

IP Country Detection
94.159.113.84
Russian Federation
185.244.226.2
unknown

Domains

Name IP Detection
genericfixer.com
94.159.113.84
link.storjshare.io
185.244.226.2

URLs

Name Detection
https://genericfixer.com/kernel96.aspx
https://genericfixer.com/libraries4.aspx
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.php
Click to see the 42 hidden entries
https://link.storjshare.io/static/css/style.css?v=260f2af
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1h
https://link.storjshare.io/static/img/file.png?v=260f2af
https://genericfixer.com/
https://link.storjshare.io
https://link.storjshare.io/static/img/logo.svg?v=260f2af
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpS
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpT
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpU
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=17f
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpO
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1U
http://schemas.xml
http://schemas.xmlpID3D12CommandListwindows-1253MSNdis_AtmSupporteadvapi32u_%s/c_%s/a_%scomctl32lavr
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpZ
https://genericfixer.com/kernel96.aspx9Y0
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1V:7
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpX
https://curl.se/V
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpRgdLmzxeXwUhPcd1kZVt0jM
https://genericfixer.com/kernel96.aspxhttps://genericfixer.com/kernel96.aspxE
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.php_
https://genericfixer.com/kernel96.aspxUVk
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpk
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1P
https://notepad-plus-plus.org/0
http://www.microsoft.co
https://unpkg.com/leaflet
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1KJ&
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1he
https://storj.io/signup
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpb
https://link.storjshare.io/s/juyvwcout7cnsklzqw2cstsyq3jq/test/Lc2.exe?download=1
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.php0
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpJr
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpq
https://link.storjshare.io/static/css/bootstrap.min.css?v=260f2af
https://www.storj.io/
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.php8
https://genericfixer.com/sysfixsync/kernel-patches/january-2025/fixomatic.phpy
https://curl.se/docs/copyright.htmlD
https://genericfixer.com/kernel96.aspx-Y

Dropped files

Name File Type Hashes Detection
C:\Users\user\8f08\user-PC\user-PC.winmd
PE32 executable (DLL) (console) Intel 80386, for MS Windows
#